This Privacy & POPIA Notice for our WooCommerce e-commerce website explains how we actively collect, process, store, and protect your personal information. This applies when you browse our website, place orders, download digital products, subscribe to services, or contact us. This POPIA Notice is an Extension of our Privacy Policy and required. Read our Terms and Conditions and Cookie Policy in conjunction with our Privacy & POPIA Notice.
Accordingly, we comply with the Protection of Personal Information Act, 4 of 2013 (POPIA). In addition, we use clear, plain-English explanations. As a result, you can easily understand how your data is handled within WooCommerce and Mailchimp systems.
We act as the Responsible Party under POPIA. Therefore, we determine how and why personal information is processed.
Information Officer: Johan Booysen
Email: johan@onlinehealthshop.co.za
Furthermore, the Information Officer oversees POPIA compliance. In addition, they handle access requests, corrections, objections, and complaints.
When you use our WooCommerce store, we collect personal information directly through checkout forms, account registration, and system records. This information may include:
Importantly, WooCommerce processes payments through secure third-party gateways. Therefore, we never store or access your card details.
We use personal information only for lawful and necessary business purposes.
First, we use your information to:
Next, we process personal information to:
Finally, where subscriptions apply, we use your information to:
Consequently, all processing follows POPIA’s requirements for minimality, purpose limitation, and security.
If you purchase a subscription:
We integrate Mailchimp with WooCommerce to manage marketing communications.
Firstly:
Secondly:
Finally:
Accordingly, we never sell or share personal information for third-party marketing.
We use cookies and similar technologies to:
Essential cookies remain active at all times. Only after your consent marketing and analytics cookies activated. You can manage these settings through your browser or cookie banner.
We actively protect personal information by applying reasonable safeguards.
These measures include:
To reduce risk we regularly review these controls.
If a data breach occurs within WooCommerce, Mailchimp, or related systems:
Under POPIA notice, you have the right to:
You can exercise these rights by contacting the Information Officer using the details above.
Last Review of this Compliance was done on the 09 February 2026.
Our website address is: https://onlinehealthshop.co.za. and this is our Privacy Policy.
Products you’ve viewed, location, IP address and browser type (search engine). This is to see what you were looking for or looking at. It is also to see how to enhance your experience. Cookies tracks this also. Please read this Privacy policy in conjunction with our POPIA Notice, Terms and Conditions and Cookie Policy.
Personal data, such as name, email address, contact number; delivery address, billing address, transactional data, such as purchase information and searches.
Send you information about your account and orders.
We store your information to fast track refunds and complaints, accounting and tax compliance and to notify you of specials if you choose to receive it.
When visitors leave comments on the site we collect the data shown in the comments form, and also the visitor’s IP address and browser user agent string to help spam detection.
An anonymized string created from your email address (also called a hash) may be provided to the Gravatar service to see if you are using it. The Gravatar service privacy policy is available here: https://automattic.com/privacy/. After approval of your comment, your profile picture is visible to the public in the context of your comment.
If you upload images to the website, you should avoid uploading images with embedded location data (EXIF GPS) included. Visitors to the website can download and extract any location data from images on the website.
You may note that we keep contact form submissions indefinitely for customer service purposes. We keep this information, submitted by you, for marketing and research purposes only under our privacy policy and popia compiance.
By default, WordPress does not collect any analytics data. However, many web hosting accounts collect some anonymous analytics data. We have Google Analytics installed.
If you leave a comment on our site you may opt-in to saving your name, email address and website in cookies. These are for your convenience so that you do not have to fill in your details again when you leave another comment. These cookies will last for one year.
If you visit our login page, we will set a temporary cookie to determine if your browser accepts cookies. This cookie contains no personal data, closing your browser discards this cookie .
When you log in, we will also set up several cookies to save your login information and your screen display choices “Remember Me” and will persist for two weeks . Login cookies last for two days, and screen options cookies last for a year. When you log out the login cookie automatically deletes.
Editing or publish an article creates a cookie. This cookie includes no personal data and simply indicates the post ID of the article you just edited. It expires after 1 day.
Cookie policy available here: https://onlinehealthshop.co.za/cookie-policy/
Articles on this site may include embedded content (e.g. videos, images, articles, etc.). Embedded content from other websites behaves in the exact same way as if the visitor has visited the other website.
These websites may collect data about you using cookies. Embed additional third-party cookies tracking and monitor your interaction with content that is embedded. Tracking your interaction with the embedded content if you have an account and are logged in to that website.
We retain Metadata indefinitely on comments. Automated spam detection service checks visitor comments. This is so we can recognize and approve any follow-up comments automatically instead of holding them in a moderation queue.
For users that register on our website (if any), we also store the personal information they provide in their user profile. All users can see, edit, or delete their personal information at any time (except they cannot change their username). Website administrators can also see and edit that information.
If you have an account on this site, or have left comments, you can request to receive an exported file of the personal data we hold about you, including any data you have provided to us. You can also request that we erase any personal data we hold about you. Some data we have to keep such as Administrative and security data for legal purposes.
We store your name, contact details, transactional and purchase history. We also store delivery and billing address and searches for your purchases.
If you request a password reset, your IP address will be stored and shared with the reset email. You could be required to register for 2FA. (2 factor authentication)
We accept payments through Payfast. Processing your payments require so off your data. It includes information required to process and or support the payment, such as the purchase total and billing information. Payfast legal documents. We do not store banking details of customers at all.
Delivery company We make use of The Courier Guy to send your parcels. To do this we have to include your information for them to be able to do your delivery. The Courier Guy privacy policies
